Skip to content
Menu
IT-DRAFTS
  • About
  • My Statistics at Microsoft Q&A
  • Privacy policy
IT-DRAFTS

Tag: Cybersecurity

August 19, 2025August 19, 2025

Windows Hello PIN Disaster After Windows 11 24H2 Upgrade — When Security Becomes Your Hostage

Hey hey, if you like to test something new like update on prod that is exactly for you my seety geek :)))))))) If you thought the Windows 11 24H2 upgrade was just another boring patch Tuesday — think again. After the upgrade, users happily log in with their PIN… until the dreaded message appears: “PIN…

Read More
August 19, 2025

Microsoft Security Exposure Management: Ninja Training — No Magic, Just Painful Truths

Hi for All of you IT geeks and Security Gents! If you thought this was another shiny Microsoft hype circus — spoiler: it’s not.MSEM Ninja Training won’t turn you into some Hollywood hacker-Ninja in a hoodie. What it will do is drag you through the joyless swamp of Continuous Threat Exposure Management (CTEM) until you…

Read More
July 21, 2025

Microsoft Sentinel: Now Smarter, Meaner, and Autogenerating Paranoia

July 2025 Updates — Welcome to the age of Copilot-driven SOC mayhem Another month, another round of Microsoft Sentinel updates. But this time, it’s not just “new features” — it’s Copilot on caffeine, automation on steroids, and behavior analytics that feel more like digital surveillance than SIEM. 🔥 What’s new in July? 🧠 Incident Enrichment…

Read More
July 21, 2025July 21, 2025

Windows is dead, but still breathing cash

The new Extended Security Updates (ESU) 2025 Microsoft just launched a new necromancy-as-a-service program.Officially, Windows 10 dies on October 14, 2025. But with ESU, it can limp along till 2028 — a solid business decision if you’re not quite ready to bury your operating system. 💀 Is Windows 10 really dying? Yep. After Oct 14,…

Read More
July 15, 2025

GDPR: Not Just a Regulation — Your Digital Trust Architecture in the EU

Why every European company must treat GDPR not as a checkbox, but as a strategic pillar “Compliance is not a project. It’s a posture.”— Chief Privacy Officer, leading European fintech firm 🧩 What is GDPR — beyond the basics The General Data Protection Regulation (GDPR) is Regulation (EU) 2016/679 of the European Parliament and Council,…

Read More
July 9, 2025July 9, 2025

DPAPI: The Granddaddy of Windows Crypto (and your secrets)

Hey hey, so, n0w lets talk about DPAPI DPAPI is ‘Data Protection API’ is Windows’ native system for encrypting stuff like saved credentials, cookies, Wi-Fi passwords, and personal certs. Introduced in Windows 2000, it’s the ancient beast that still powers a terrifying amount of “secure storage” in modern Windows. 🧠 Under the Hood Based on…

Read More
June 20, 2025June 20, 2025

Break the Chain: Why FIDO2 Is Killing Passwords for Good

Hey, let’s be honest: passwords are over. SMS‑codes, pushpopups, totp tokens, great in theory, weak in real‑life fights. bad guys surf that weakness like it’s a goldmine. phishing got too smart, MFA fatigue is real, and attackers no longer brute-force, they social-engineer the hell out of u. that’s where FIDO2 crashes in like a hero,…

Read More
June 6, 2025June 6, 2025

Your Certificate Authority might betray u, like… for real :)))

aka: how to stop trusting blindly and lock down ur Microsoft ca before it ruins ur life What’s the big deal, why care about some “ca”? So CA is a topic a spicy one. like, most people don’t even think about certificate authority. it’s just “one of those servers in the corner” that got set…

Read More
May 22, 2025

Scheduled Password Changes Are an Outdated Practice

Hi for All and have a nice time, so today we are talking about passwords (ready?) Let’s think! • In most IT systems and various companies, mandatory periodic password changes are a common rule. At my company, passwords must be changed every three months. Do you think this approach is correct? After all, this practice…

Read More
February 21, 2025

OWASP Top 10 NHIs Risks 2025

1. Improper Offboarding When NHIs (Non-Human Identities) like service accounts, API keys, and machine credentials are not properly offboarded, they can become a security risk. This includes failing to deactivate old or deprecated secrets, leading to “zombie NHIs” that attackers can exploit. Automating the NHIs lifecycle ensures stale secrets are discovered and revoked, reducing attack…

Read More
  • 1
  • 2
  • Next

Categories

ActiveDirectory AI Azure AzureAI azurefirewall azurenetworking azurepolicy azuresecurity cloudarchitecture cloudnetworking CloudSecurity Copilot Cybersecurity DataProtection DataSecurity DevOps devsecops DNS enterpriseai Entra entraID GDPRcompliance Howto hybridcloud Innovation licensing MFA Microsoft Microsoft365 Microsoft AI MicrosoftAzure microsoftcloud Microsoft Product microsoftsecurity MicrosoftSentinel MSteams ProductivityTools Security SoftwareUpdate TechNews updates Windows Windows10 Windows11 zeroTrust

Archives

  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • February 2025
  • October 2024
  • September 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
No comments to show.

Recent Comments

Recent Posts

  • Windows Hello PIN Disaster After Windows 11 24H2 Upgrade — When Security Becomes Your Hostage
  • Microsoft Security Exposure Management: Ninja Training — No Magic, Just Painful Truths
  • The Technical Foundation of Multi-Agent Copilot Systems and Secure AI Infrastructure in Microsoft Azure
  • Reflection Relay: Never Happened Before, and Here We Go Again (CVE-2025-33073)
  • Ctrl+Alt+Del: Born a Crutch, Raised to Be a Ritual
©2025 IT-DRAFTS | Powered by WordPress and Superb Themes!